McDATA 4314 manual Fabric Security

Page 29

Fabric Security

Network Time Protocol (NTP): Provides for the synchronizing of switch and workstation dates and times with an NTP server. This helps to prevent invalid SSL certificates and timestamp confusion in the event log. The default is disabled.

Common Information Model (CIM): Provides for the management of the switch through third-party applications that use CIM. The default is enabled.

File Transfer Protocol (FTP): Provides for transferring files rapidly between the workstation and the switch using FTP. The default is enabled.

Management Server (MS): Enables or disables the management of the switch through third-party applications that use GS-3 Management Server. The default is disabled.

Fabric Security

An effective security profile begins with a security policy that states the requirements. A threat analysis is needed to define the plan of action followed by an implementation that meets the security policy requirements. Internet portals, such as remote access and E-mail, usually present the greatest threats. Fabric security should also be considered in defining the security policy.

Most fabrics are located at a single site and are protected by physical security, such as key-code locked computer rooms. For these cases, security methods such as user passwords for equipment and zoning for controlling device access, are satisfactory.

Fabric security is needed when security policy requirements are more demanding: for example, when fabrics span multiple locations and traditional physical protection is insufficient to protect the IT infrastructure. Another benefit of fabric security is that it creates a structure that helps prevent unintended changes to the fabric.

Fabric security consists of the following:

Connection Security

Device Security

User Account Security

Planning

2-9

Image 29
Contents McDATA Fibre Channel Switch Module Installation Guide Copyright 2005 McDATA Corporation. All rights reserved Contents Appendix a Specifications Chapter InstallationChapter Troubleshooting Contents McDATA 4314 Fibre Channel Switch Module Installation Guide Figures Figures Viii Tables Tables Preface How to Use this ManualWho Should Use this Manual Related DocumentationPreface General Description McDATA 4314 Switch ModuleMaintenance Button Switch Module Controls and LEDsFibre Channel Ports Switch Module LEDsExternal Port LEDs Port Logged-In LED Green TransceiversPort Types Ethernet PortMcDATA Embedded Web Server Switch Module ManagementFile Transfer Protocol Command Line InterfaceSimple Network Management Protocol Devices PlanningSoft Zones Device AccessAccess Control List Hard Zones Bandwidth PerformanceDistance Latency Optimizing Device Performance Multiple Chassis FabricsDomain ID, Principal Priority, and Domain ID Lock Switch Module Services Fabric Security Connection Security Device Security User Account Security Fabric ManagementFabric Management Workstation InstallationSite Requirements Site Requirements Environmental Conditions Installing a SwitchInstall SFP Transceivers Mounting the Switch Module in the Server Chassis Mount the Switch Module in the Server ChassisIndirect Ethernet Direct Ethernet RJ-45 Connection Connect the Management Workstation to the Switch ModuleFor a Windows platform Install Efcm BasicStart Efcm Basic Configure the Switch Module Cable Devices to the Switch Using the CLI to Install Firmware Install FirmwareUsing Efcm Basic to Install Firmware Password required for johndoe. Password User johndoe logged McDATA 4314 Fibre Channel Switch Module Installation Guide System Fault LED is Illuminated TroubleshootingInput Power LED Is Extinguished EPort Isolation Logged-In LED IndicationsExcessive Port Errors Recovering a Switch Module Maintenance Exit Maintenance Reset Network Config Maintenance Image UnpackMaintenance Reset User Accounts to Default Maintenance Copy Log FilesMaintenance Update Boot Loader Maintenance Remake FilesystemMaintenance Reset Switch McDATA 4314 Fibre Channel Switch Module Installation Guide Fabric Specifications SpecificationsLED indicators Maintainability SpecificationsElectrical Specifications Fabric Management SpecificationsDimensional Specifications Environmental Specifications Certification Description Regulatory CertificationsMcDATA 4314 Fibre Channel Switch Module Installation Guide Glossary Administrative StateMcDATA 4314 Fibre Channel Switch Module Installation Guide Fdmi MIB Protocol McDATA 4314 Fibre Channel Switch Module Installation Guide Numerics IndexLED Reset 1-2,4-7services 2-8specifications A-1 McDATA 4314 Fibre Channel Switch Module Installation Guide

4314 specifications

The McDATA 4314 is a highly regarded Fibre Channel switch designed for enterprise storage area networks (SANs). This switch is particularly known for its reliability, high performance, and scalability. As part of McDATA's extensive range of networking products, the 4314 stands out for its ability to meet the demands of modern data centers, providing seamless connectivity for numerous storage and server devices.

One of the main features of the McDATA 4314 is its robust architecture, which supports up to 32 ports. This enables a flexible configuration that can easily scale as the needs of the organization grow. The switch is characterized by its ability to handle both FC-AL and FC-SW protocols, thus providing compatibility with a wide range of existing Fibre Channel devices. This versatility makes it ideal for organizations looking to enhance their existing infrastructure without the need for a complete overhaul.

In terms of performance, the McDATA 4314 supports high bandwidth requirements, with each port capable of delivering up to 4 Gbps. This high throughput is critical for data-intensive applications, ensuring low latency access to data stored on SAN devices. Additionally, the switch incorporates advanced technologies such as dynamic load balancing and intelligent pathing, which further optimize traffic flow and enhance overall system performance.

Security is a key consideration in any data center environment, and the McDATA 4314 addresses this with features such as zoning and masking. These capabilities ensure that only authorized devices can access specific data, safeguarding sensitive information from potential breaches. Moreover, the switch supports management protocols like SNMP (Simple Network Management Protocol), allowing for seamless integration into existing network management systems and enabling administrators to monitor performance and troubleshoot efficiently.

In terms of characteristics, the McDATA 4314 is designed for high availability, with redundant components that minimize downtime in critical environments. Furthermore, its compact form factor allows for efficient rack space utilization, making it a practical choice for organizations with space constraints.

Overall, the McDATA 4314 Fibre Channel switch provides a combination of performance, reliability, and scalability, making it an ideal choice for enterprise environments. Its advanced features and robust design ensure that organizations can maintain high levels of performance while effectively managing their storage networks. Whether supporting virtualized environments or managing extensive data storage, the McDATA 4314 is a valuable asset for any data center infrastructure.